lesser-equity

Magazine
Go Back   Computer Juice > Computer Software > General Software Chat

Register


 Default 

Ccleaner showing,uninst.exe on startup




Reply
 
Thread Tools
  #1  
Old 16th Jan 2009, 10:11
Donor Group
 
Default Ccleaner showing,uninst.exe on startup

Cleaner is showing
uninst.exe

at startup can i search for it and delite it or is it needed? i googled it and am getting spywear related but this is a 3 days old fresh install of vista ultimate!
__________________
www.myPCbuild.piczo.com
My Build logs & step by step mods

__________________

My System: P*L*A*Z*M*A

Processor(s):
2.3GhZ AmD
Motherboard:
Asus
RAM Memory:
1 gig ddr
Graphics Card(s):
256mb G-force
Sound Card:
sound Blaster 5.1
Hard Drive(s):
1-80gb 1-120gb western digital's
Optical Drive(s):
pioneer's DVD-RW
Case / PSU:
custom case & 650w psu
Cooling:
diy watercooling
Network / Internet:
virgin 50mb
Monitor(s):
Acer 23" (X233HB)
Operating System(s):
Vista Ultimate
  #2  
Old 16th Jan 2009, 12:29
Malware Group
 
Default Ccleaner showing,uninst.exe on startup

Hi

That file can be legit or malware. It is often used as an uninstaller. It's all dependent on location - what is the full path to the file?
__________________
Iain - Defender of the Haggis
Member of ASAP : : Member of UNITE
__________________

My System: It's all mine...

Processor(s):
C2D E6750 2.66Ghz
Motherboard:
Gigabyte P35C-DS3R
RAM Memory:
2 x 1Gb Corsair DDR2 XMS2 PC26400
Graphics Card(s):
GeForce 8600GT
Sound Card:
Creative X-Fi
Hard Drive(s):
Maxtor 320Gb
Optical Drive(s):
Pioneer DVD-RW
Case / PSU:
Antec 900 / Antec TruPower Trio 650
Cooling:
Various Antec + Zalman 92mm
Network / Internet:
ASUS Router/VirginMedia
Monitor(s):
LGL226WQ 22" Widescreen
Operating System(s):
XP Pro SP3
  #3  
Old 16th Jan 2009, 13:13
Donor Group
 
Default Ccleaner showing,uninst.exe on startup

After a system restart is the file still there?
__________________

__________________

My System: Custom Built v1.2

Processor(s):
Inter Dual Core E2160 @ 3.02Ghz
Motherboard:
Asus P5PL2-E
RAM Memory:
2 x 1GB DDR2 533Mhz PC4200
Graphics Card(s):
Nvidia Geforce 7600GS 512MB
Sound Card:
Onboard
Hard Drive(s):
Western Digital 160GB Sata HDD
Optical Drive(s):
LG DVD-Rom and LiteOn 20x DVD-RW
Case / PSU:
Cooler Master Case and Antec PSU
Cooling:
2x Antec Fans
Network / Internet:
BT Broadband
Monitor(s):
Samsung SyncMaster 931cw 19"
Operating System(s):
XP Pro, Vista Ultimate, Ubuntu
  #4  
Old 16th Jan 2009, 17:13
Donor Group
 
Default Ccleaner showing,uninst.exe on startup

did a print screen for you so you can see what i mean i dont no the PATH of the file as it dont say in Ccleaner. its still there after a restart two
__________________
www.myPCbuild.piczo.com
My Build logs & step by step mods

  #5  
Old 16th Jan 2009, 19:13
Moderator Group
 
Default Ccleaner showing,uninst.exe on startup

Create a Startup List

1. Open HijackThis and select Open the Misc Tools section
2. Click on the button which says Generate StartupList log
3. Click Yes when prompted and a notepad document will open.
4. Save the log to the desktop and attach it in the next post.
__________________

  #6  
Old 17th Jan 2009, 10:26
Donor Group
 
Default Ccleaner showing,uninst.exe on startup

sorry about the long wait

StartupList report, 17/01/2009, 17:25:58
StartupList version: 1.52.2
Started from : C:\Users\Pete\Desktop\HijackThis.EXE
Detected: Windows Vista (WinNT 6.00.1904)
Detected: Internet Explorer v7.00 (7.00.6000.16386)
* Using default options
==================================================

Running processes:

C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Windows\Explorer.EXE
C:\Program Files\Avast4\ashDisp.exe
C:\Program Files\RocketDock\RocketDock.exe
C:\Windows\ehome\ehtray.exe
C:\Windows\System32\rundll32.exe
C:\Windows\ehome\ehmsas.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Winamp\winamp.exe
C:\Windows\explorer.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Pete\Desktop\HijackThis.exe

--------------------------------------------------

Checking Windows NT UserInit:

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
UserInit = C:\Windows\system32\userinit.exe,

--------------------------------------------------

Autorun entries from Registry:
HKLM\Software\Microsoft\Windows\CurrentVersion\Run

Cmaudio = RunDll32 cmicnfg.cpl,CMICtrlWnd
avast! = C:\PROGRA~1\Avast4\ashDisp.exe
NvSvc = RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
NvCplDaemon = RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
NvMediaCenter = RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit

--------------------------------------------------

Autorun entries from Registry:
HKCU\Software\Microsoft\Windows\CurrentVersion\Run

RocketDock = "C:\Program Files\RocketDock\RocketDock.exe"
ehTray.exe = C:\Windows\ehome\ehTray.exe

--------------------------------------------------

Autorun entries in Registry subkeys of:
HKLM\Software\Microsoft\Windows\CurrentVersion\Run

[OptionalComponents]
=

--------------------------------------------------

Shell & screensaver key from C:\Windows\SYSTEM.INI:

Shell=*INI section not found*
SCRNSAVE.EXE=*INI section not found*
drivers=*INI section not found*

Shell & screensaver key from Registry:

Shell=explorer.exe
SCRNSAVE.EXE=C:\Windows\system32\logon.scr
drivers=*Registry value not found*

Policies Shell key:

HKCU\..\Policies: Shell=*Registry key not found*
HKLM\..\Policies: Shell=*Registry value not found*

--------------------------------------------------


Enumerating Browser Helper Objects:

AcroIEHelperStub - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll - {18DF081C-E8AD-4283-A596-FA578C2EBDC3}
(no name) - (no file) - {5C255C8A-E604-49b4-9D64-90988571CECB}
(no name) - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43}
(no name) - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll - {9030D464-4C02-4ABF-8ECC-5164760863C6}

--------------------------------------------------

Enumerating Download Program Files:

[Shockwave Flash Object]
InProcServer32 = C:\Windows\system32\Macromed\Flash\Flash10a.ocx
CODEBASE = http://fpdownload2.macromedia.com/ge...sh/swflash.cab

--------------------------------------------------

Enumerating Winsock LSP files:

NameSpace #1: C:\Windows\system32\NLAapi.dll
NameSpace #4: C:\Windows\system32\napinsp.dll
NameSpace #5: C:\Windows\system32\pnrpnsp.dll
NameSpace #6: C:\Windows\system32\pnrpnsp.dll

--------------------------------------------------

Enumerating ShellServiceObjectDelayLoad items:

WebCheck: C:\Windows\system32\webcheck.dll

--------------------------------------------------
End of report, 4,466 bytes
Report generated in 0.210 seconds

Command line options:
/verbose - to add additional info on each section
/complete - to include empty sections and unsuspicious data
/full - to include several rarely-important sections
/force9x - to include Win9x-only startups even if running on WinNT
/forcent - to include WinNT-only startups even if running on Win9x
/forceall - to include all Win9x and WinNT startups, regardless of platform
/history - to list version history only
__________________
www.myPCbuild.piczo.com
My Build logs & step by step mods

  #7  
Old 17th Jan 2009, 17:10
Moderator Group
 
Default Ccleaner showing,uninst.exe on startup

That didn't show it.

Download random's system information tool (RSIT) by random/random from and save it to your Desktop.
  • Double click on RSIT.exe to run.
  • Click Continue at the disclaimer screen.
  • Once it has finished, two logs will open.
  • log.txt <will be maximized and info.txt <will be minimized
  • Please post the contents of both logs in the next reply.
__________________

  #8  
Old 17th Jan 2009, 17:54
Donor Group
 
Default Ccleaner showing,uninst.exe on startup

am running vista ultimate if that makes any diffrence

Logfile of random's system information tool 1.05 (written by random/random)
Run by Pete at 2009-01-18 00:45:36
Microsoft® Windows Vista™ Ultimate
System drive C: has 66 GB (86%) free of 76 GB
Total RAM: 767 MB (47% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 00:45:49, on 18/01/2009
Platform: Windows Vista (WinNT 6.00.1904)
MSIE: Internet Explorer v7.00 (7.00.6000.16386)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Windows\Explorer.EXE
C:\Program Files\Avast4\ashDisp.exe
C:\Program Files\RocketDock\RocketDock.exe
C:\Windows\ehome\ehtray.exe
C:\Windows\System32\rundll32.exe
C:\Windows\ehome\ehmsas.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Pete\Desktop\RSIT.exe
C:\Program Files\trend micro\Pete.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.co.uk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.2.8.7.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKCU\..\Run: [RocketDock] "C:\Program Files\RocketDock\RocketDock.exe"
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [DevconDefaultDB] C:\Windows\system32\READREG /SILENT /FAIL=1 (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [DevconDefaultDB] C:\Windows\system32\READREG /SILENT /FAIL=1 (User 'Default user')
O8 - Extra context menu item: &D&ownload &with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm
O8 - Extra context menu item: &D&ownload all video with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htm
O8 - Extra context menu item: &D&ownload all with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - (no file)
O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://C:\Program Files\BitComet\tools\BitCometBHO_1.2.8.7.dll/206 (file missing)
O13 - Gopher Prefix:
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/ge...sh/swflash.cab
O22 - SharedTaskScheduler: Windows DreamScene - {E31004D1-A431-41B8-826F-E902F9D95C81} - C:\Windows\System32\DreamScene.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Avast4\ashServ.exe

--
End of file - 4385 bytes

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11 75128]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Explorer\Browser Helper Objects\{39F7E362-828A-4B5A-BCAF-5B79BFDFEA60}]
BitComet Helper - C:\Program Files\BitComet\tools\BitCometBHO_1.2.8.7.dll [2008-08-11 656696]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll [2008-06-10 509328]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2008-11-18 408952]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\Curr entVersion\Run]
"Cmaudio"=RunDll32 cmicnfg.cpl []
"avast!"=C:\PROGRA~1\Avast4\ashDisp.exe [2008-07-19 78008]
"NvSvc"=C:\Windows\system32\nvsvc.dll [2006-10-09 90191]
"NvCplDaemon"=C:\Windows\system32\NvCpl.dll [2006-10-09 7741440]
"NvMediaCenter"=C:\Windows\system32\NvMcTray.d ll [2006-10-09 81920]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\Curre ntVersion\Run]
"RocketDock"=C:\Program Files\RocketDock\RocketDock.exe [2007-09-02 495616]
"ehTray.exe"=C:\Windows\ehome\ehTray.exe [2006-11-02 125440]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTHelper]
C:\Windows\system32\CTHELPER.EXE [2008-06-27 19456]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ehTray.exe]
C:\Windows\ehome\ehTray.exe [2006-11-02 125440]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Monitor]
C:\Windows\PixArt\PAC207\Monitor.exe [2006-11-03 319488]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe [2008-06-10 144784]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WindowFX]
C:\Program Files\WindowFX\\wfxload.exe [2006-08-02 820912]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\CCleaner.exe]
CCleaner.exe []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\explorer\SharedTaskScheduler]
Windows DreamScene - {E31004D1-A431-41B8-826F-E902F9D95C81} - C:\Windows\System32\DreamScene.dll [2009-01-17 122880]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\Curr entVersion\Policies\System]
"EnableLUA"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\servic es\sharedaccess\parameters\firewallpolicy\standard profile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\servic es\sharedaccess\parameters\firewallpolicy\domainpr ofile\authorizedapplications\list]

======List of files/folders created in the last 1 months======

2009-01-18 00:45:38 ----D---- C:\Program Files\trend micro
2009-01-18 00:45:36 ----D---- C:\rsit
2009-01-17 03:07:11 ----A---- C:\Windows\system32\wups2.dll
2009-01-17 03:07:11 ----A---- C:\Windows\system32\wucltux.dll
2009-01-17 03:07:11 ----A---- C:\Windows\system32\wuaueng.dll
2009-01-17 03:07:11 ----A---- C:\Windows\system32\wuauclt.exe
2009-01-17 03:05:59 ----A---- C:\Windows\system32\wudriver.dll
2009-01-17 03:05:58 ----A---- C:\Windows\system32\wups.dll
2009-01-17 03:05:58 ----A---- C:\Windows\system32\wuapi.dll
2009-01-17 03:05:09 ----A---- C:\Windows\system32\wuwebv.dll
2009-01-17 03:05:08 ----A---- C:\Windows\system32\wuapp.exe
2009-01-17 03:00:58 ----A---- C:\Windows\system32\DreamScene.dll
2009-01-17 03:00:57 ----A---- C:\Windows\system32\themecpl.dll
2009-01-17 02:58:34 ----HD---- C:\Windows\PIF
2009-01-17 02:03:02 ----D---- C:\Program Files\DreamRender
2009-01-17 01:14:02 ----A---- C:\Windows\system32\themecpl.dll.original
2009-01-16 11:23:49 ----A---- C:\Windows\system32\NVUNINST.EXE
2009-01-16 11:23:37 ----D---- C:\NVIDIA
2009-01-14 17:10:47 ----D---- C:\Program Files\Messenger Plus! Live
2009-01-14 17:04:20 ----D---- C:\Program Files\Microsoft
2009-01-14 17:03:57 ----D---- C:\Program Files\Windows Live SkyDrive
2009-01-14 17:03:34 ----D---- C:\Program Files\Windows Live
2009-01-14 17:03:13 ----D---- C:\Windows\PCHEALTH
2009-01-14 17:00:45 ----D---- C:\Program Files\Common Files\Windows Live
2009-01-13 19:25:18 ----D---- C:\ProgramData\NCH Software
2009-01-13 19:24:57 ----D---- C:\ProgramData\NCH Swift Sound
2009-01-13 19:24:57 ----D---- C:\Program Files\NCH Software
2009-01-13 19:24:14 ----D---- C:\Program Files\NCH Swift Sound
2009-01-13 19:15:59 ----D---- C:\Windows\system32\ffdshow
2009-01-13 19:15:56 ----D---- C:\Program Files\DVD Maker
2009-01-13 19:13:44 ----A---- C:\Windows\system32\ssubtmr6.dll
2009-01-13 19:04:31 ----D---- C:\Windows\pss
2009-01-13 19:02:42 ----D---- C:\Program Files\CCleaner
2009-01-13 18:57:34 ----D---- C:\Program Files\Common Files\Adobe AIR
2009-01-13 18:56:17 ----D---- C:\ProgramData\Adobe
2009-01-13 18:55:56 ----D---- C:\Program Files\Common Files\Adobe
2009-01-13 18:55:56 ----D---- C:\Program Files\Adobe
2009-01-13 09:52:52 ----D---- C:\Program Files\TagScanner
2009-01-12 17:44:55 ----A---- C:\Windows\system32\imageres.dll
2009-01-12 17:34:08 ----D---- C:\ProgramData\Stardock
2009-01-12 17:33:59 ----A---- C:\Windows\system32\wbhelp2.dll
2009-01-12 17:33:57 ----D---- C:\Program Files\Stardock
2009-01-12 14:11:34 ----D---- C:\Program Files\CodeGazer
2009-01-11 18:13:06 ----D---- C:\Users\Pete\AppData\Roaming\WinRAR
2009-01-11 18:11:45 ----D---- C:\Program Files\WinRAR
2009-01-11 18:03:17 ----D---- C:\Program Files\VistaCodecPack
2009-01-11 18:01:39 ----D---- C:\ProgramData\VistaCodecs
2009-01-11 12:04:00 ----D---- C:\Windows\Panther
2009-01-11 12:03:48 ----RAS---- C:\BOOTSECT.BAK
2009-01-11 12:03:45 ----SHD---- C:\Boot
2009-01-11 12:03:23 ----D---- C:\Windows\system32\OEM
2009-01-11 10:33:48 ----D---- C:\Users\Pete\AppData\Roaming\Macromedia
2009-01-11 10:33:48 ----D---- C:\Users\Pete\AppData\Roaming\Adobe
2009-01-11 10:32:35 ----D---- C:\Windows\system32\Macromed
2009-01-11 10:00:53 ----D---- C:\Users\Pete\AppData\Roaming\Mozilla
2009-01-11 10:00:38 ----D---- C:\Program Files\Mozilla Firefox
2009-01-11 09:58:20 ----RD---- C:\Downloads
2009-01-11 09:42:12 ----D---- C:\Program Files\Common Files\SWF Studio
2009-01-11 09:42:09 ----A---- C:\Windows\system32\GTW32N50.dll
2009-01-11 09:41:37 ----D---- C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor
2009-01-11 09:41:28 ----A---- C:\Windows\system32\WLAN.INI
2009-01-11 09:39:13 ----D---- C:\Users\Pete\AppData\Roaming\vlc
2009-01-11 08:38:01 ----D---- C:\Program Files\RocketDock
2009-01-11 08:36:05 ----D---- C:\Program Files\Motherboard Monitor 5
2009-01-11 08:30:29 ----D---- C:\Program Files\JRE
2009-01-11 08:30:20 ----D---- C:\Program Files\OpenOffice.org 3
2009-01-11 08:29:35 ----A---- C:\Windows\system32\javaws.exe
2009-01-11 08:29:35 ----A---- C:\Windows\system32\javaw.exe
2009-01-11 08:29:35 ----A---- C:\Windows\system32\java.exe
2009-01-11 08:28:25 ----D---- C:\Program Files\Common Files\Java
2009-01-11 08:26:32 ----D---- C:\Program Files\readmes
2009-01-11 08:26:32 ----D---- C:\Program Files\licenses
2009-01-11 08:26:32 ----D---- C:\Program Files\java
2009-01-11 08:24:53 ----D---- C:\Program Files\EVEREST Home Edition
2009-01-11 08:22:47 ----D---- C:\Users\Pete\AppData\Roaming\Malwarebytes
2009-01-11 08:22:43 ----D---- C:\ProgramData\Malwarebytes
2009-01-11 08:22:42 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2009-01-11 08:14:27 ----D---- C:\Program Files\PeerGuardian2
2009-01-11 08:13:39 ----D---- C:\Program Files\BitComet
2009-01-11 08:08:16 ----D---- C:\Program Files\MagicISO
2009-01-11 06:35:43 ----A---- C:\Windows\WORDPAD.INI
2009-01-11 06:35:07 ----A---- C:\Windows\system32\MSVCR71.dll
2009-01-11 06:35:07 ----A---- C:\Windows\system32\MSVCP71.dll
2009-01-11 06:35:07 ----A---- C:\Windows\system32\MFC71.dll
2009-01-11 06:35:07 ----A---- C:\Windows\system32\aswBoot.exe
2009-01-11 06:35:04 ----D---- C:\Program Files\Avast4
2009-01-11 06:32:04 ----D---- C:\Program Files\VirtualDJ
2009-01-11 06:06:14 ----A---- C:\Windows\windowfx3.ini
2009-01-11 06:05:38 ----A---- C:\Windows\windowfx2.ini
2009-01-11 06:02:03 ----D---- C:\Program Files\WindowFX
2009-01-11 06:00:11 ----D---- C:\Program Files\VCLplayer
2009-01-11 05:28:26 ----AD---- C:\ProgramData\TEMP
2009-01-11 05:28:19 ----D---- C:\Program Files\Common Files\DeskShare Shared
2009-01-11 05:28:18 ----A---- C:\Windows\system32\Unicows.dll
2009-01-11 05:28:15 ----D---- C:\Program Files\Video Edit Magic 4.4
2009-01-11 05:24:47 ----D---- C:\Users\Pete\AppData\Roaming\Winamp
2009-01-11 05:24:47 ----D---- C:\Program Files\Winamp
2009-01-11 05:21:49 ----D---- C:\Program Files\X box controller
2009-01-11 05:19:45 ----A---- C:\Windows\system32\Remover.ini
2009-01-11 05:19:45 ----A---- C:\Windows\system32\Remove.exe
2009-01-11 05:19:44 ----D---- C:\Windows\PixArt
2009-01-11 05:19:43 ----D---- C:\Program Files\Trust
2009-01-11 05:19:43 ----D---- C:\Program Files\Common Files\PAC207
2009-01-11 05:19:20 ----D---- C:\Windows\Downloaded Installations
2009-01-11 05:19:18 ----SHD---- C:\Windows\Installer
2009-01-11 05:01:45 ----D---- C:\Windows\system32\Defaults
2009-01-11 05:01:12 ----D---- C:\Program Files\Creative
2009-01-11 05:00:38 ----A---- C:\Windows\system32\wrap_oal.dll
2009-01-11 05:00:38 ----A---- C:\Windows\system32\OpenAL32.dll
2009-01-11 05:00:37 ----A---- C:\Windows\system32\CmdRtr.DLL
2009-01-11 05:00:37 ----A---- C:\Windows\system32\APOMngr.DLL
2009-01-11 04:59:10 ----D---- C:\Windows\system32\Data
2009-01-11 04:58:57 ----HD---- C:\Program Files\InstallShield Installation Information
2009-01-11 04:58:54 ----D---- C:\Program Files\Common Files\InstallShield
2009-01-11 04:40:27 ----A---- C:\Windows\system32\udaprop.dll
2009-01-11 04:40:27 ----A---- C:\Windows\system32\cmuda.dll
2009-01-11 04:40:27 ----A---- C:\Windows\system32\cmirmdrv.exe
2009-01-11 04:40:27 ----A---- C:\Windows\system32\cmirmdrv.dll
2009-01-11 04:40:26 ----A---- C:\Windows\system32\Audio3D.dll
2009-01-11 04:18:37 ----SD---- C:\Users\Pete\AppData\Roaming\Microsoft
2009-01-11 04:18:37 ----D---- C:\Users\Pete\AppData\Roaming\Media Center Programs
2009-01-11 04:08:42 ----D---- C:\Windows\SoftwareDistribution
2009-01-11 04:06:17 ----D---- C:\Windows\Debug
2009-01-11 04:06:17 ----D---- C:\Windows\CSC
2009-01-11 04:04:49 ----D---- C:\Windows\Prefetch
2009-01-11 04:04:39 ----SHD---- C:\System Volume Information
2008-12-24 12:05:52 ----A---- C:\Windows\system32\VSFilter.dll

======List of files/folders modified in the last 1 months======

2009-01-18 00:45:38 ----RD---- C:\Program Files
2009-01-17 21:09:29 ----D---- C:\Windows\Temp
2009-01-17 12:36:45 ----D---- C:\Windows\System32
2009-01-17 12:36:45 ----D---- C:\Windows\inf
2009-01-17 12:36:45 ----A---- C:\Windows\system32\PerfStringBackup.INI
2009-01-17 03:09:17 ----D---- C:\Windows\rescache
2009-01-17 03:09:07 ----D---- C:\Windows\winsxs
2009-01-17 03:09:06 ----D---- C:\Windows\system32\en-US
2009-01-17 03:08:15 ----D---- C:\Windows\PolicyDefinitions
2009-01-17 03:06:59 ----D---- C:\Windows\system32\catroot
2009-01-17 03:01:41 ----D---- C:\Windows
2009-01-17 01:14:02 ----D---- C:\Windows\Web
2009-01-17 00:00:57 ----A---- C:\Windows\win.ini
2009-01-16 16:37:32 ----D---- C:\Windows\twain_32
2009-01-16 16:37:32 ----D---- C:\Windows\system32\drivers
2009-01-16 13:07:20 ----D---- C:\Windows\Cursors
2009-01-16 11:24:29 ----D---- C:\Windows\Help
2009-01-16 11:24:19 ----D---- C:\Windows\system32\catroot2
2009-01-14 20:45:32 ----D---- C:\Windows\system32\WDI
2009-01-14 17:53:04 ----SD---- C:\Windows\Downloaded Program Files
2009-01-14 17:04:03 ----D---- C:\Program Files\Common Files\microsoft shared
2009-01-14 17:00:45 ----D---- C:\Program Files\Common Files
2009-01-14 17:00:20 ----SD---- C:\ProgramData\Microsoft
2009-01-13 19:25:18 ----HD---- C:\ProgramData
2009-01-12 14:12:47 ----A---- C:\Windows\system32\uxtheme.dll
2009-01-12 14:12:46 ----A---- C:\Windows\system32\themeui.dll
2009-01-12 14:12:46 ----A---- C:\Windows\system32\shsvcs.dll
2009-01-11 18:17:51 ----RD---- C:\Users
2009-01-11 18:03:08 ----D---- C:\Windows\system32\LogFiles
2009-01-11 08:32:23 ----RSD---- C:\Windows\assembly
2009-01-11 08:30:49 ----RSD---- C:\Windows\Fonts
2009-01-11 05:01:44 ----D---- C:\Program Files\Windows Media Player
2009-01-11 05:01:44 ----D---- C:\Program Files\Common Files\System
2009-01-11 05:01:43 ----D---- C:\Program Files\Windows Sidebar
2009-01-11 04:40:47 ----D---- C:\Windows\system
2009-01-11 04:36:44 ----D---- C:\Windows\system32\restore
2009-01-11 04:28:00 ----D---- C:\Windows\system32\CodeIntegrity
2009-01-11 04:19:29 ----SHD---- C:\$Recycle.Bin
2009-01-11 04:04:39 ----D---- C:\Windows\system32\config

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2008-07-19 23152]
R1 aswSP;avast! Self Protection; C:\Windows\system32\drivers\aswSP.sys [2008-07-19 78416]
R1 aswTdi;avast! Network Shield Support; C:\Windows\system32\drivers\aswTdi.sys [2008-07-19 42912]
R1 CSC;Offline Files Driver; C:\Windows\system32\drivers\csc.sys [2006-11-02 319488]
R2 aswFsBlk;aswFsBlk; C:\Windows\system32\DRIVERS\aswFsBlk.sys [2008-07-19 20560]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\DRIVERS\aswMonFlt.sys [2008-07-19 51280]
R2 mbmiodrvr;mbmiodrvr; \??\C:\Windows\system32\mbmiodrvr.sys [2004-04-10 2944]
R3 COMMONFX.SYS;COMMONFX.SYS; C:\Windows\System32\drivers\COMMONFX.SYS [2008-06-27 99352]
R3 ctac32k;Creative AC3 Software Decoder; C:\Windows\system32\drivers\ctac32k.sys [2008-07-07 511000]
R3 ctaud2k;Creative Audio Driver (WDM); C:\Windows\system32\drivers\ctaud2k.sys [2008-07-07 532376]
R3 CTAUDFX.SYS;CTAUDFX.SYS; C:\Windows\System32\drivers\CTAUDFX.SYS [2008-06-27 555032]
R3 ctprxy2k;Creative Proxy Driver; C:\Windows\system32\drivers\ctprxy2k.sys [2008-07-07 14360]
R3 CTSBLFX.SYS;CTSBLFX.SYS; C:\Windows\System32\drivers\CTSBLFX.SYS [2008-06-27 566296]
R3 ctsfm2k;Creative SoundFont Management Device Driver; C:\Windows\system32\drivers\ctsfm2k.sys [2008-07-07 157208]
R3 emupia;E-mu Plug-in Architecture Driver; C:\Windows\system32\drivers\emupia2k.sys [2008-07-07 92696]
R3 ha10kx2k;Creative Hardware Abstract Layer Driver; C:\Windows\system32\drivers\ha10kx2k.sys [2008-07-07 797720]
R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2006-10-09 4428160]
R3 ossrv;Creative OS Services Driver; C:\Windows\system32\drivers\ctoss2k.sys [2008-07-07 127512]
R3 PAC207;Trust WB-1400T Webcam; C:\Windows\system32\DRIVERS\PFC027.SYS [2007-05-14 508288]
R3 USB_RNDIS;Linksys Wireless-G USB Network Adapter with SpeedBooster Driver v2; C:\Windows\system32\DRIVERS\usb8023.sys [2006-11-02 14848]
S3 cmuda;C-Media WDM Audio Interface; C:\Windows\system32\drivers\cmuda.sys [2006-10-29 815296]
S3 COMMONFX;COMMONFX; C:\Windows\system32\drivers\COMMONFX.SYS [2008-06-27 99352]
S3 CTAUDFX;CTAUDFX; C:\Windows\system32\drivers\CTAUDFX.SYS [2008-06-27 555032]
S3 ctdvda2k;Creative DVD-Audio Device Driver; C:\Windows\system32\drivers\ctdvda2k.sys [2008-07-07 347080]
S3 CTERFXFX.SYS;CTERFXFX.SYS; C:\Windows\System32\drivers\CTERFXFX.SYS [2008-06-27 100888]
S3 CTERFXFX;CTERFXFX; C:\Windows\system32\drivers\CTERFXFX.SYS [2008-06-27 100888]
S3 CTSBLFX;CTSBLFX; C:\Windows\system32\drivers\CTSBLFX.SYS [2008-06-27 566296]
S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2006-11-02 5632]
S3 hap16v2k;Creative P16V HAL Driver; C:\Windows\system32\drivers\hap16v2k.sys [2008-07-07 162840]
S3 hap17v2k;Creative P17V HAL Driver; C:\Windows\system32\drivers\hap17v2k.sys [2008-07-07 189464]
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2006-11-02 8192]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2006-11-02 5888]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2006-11-02 5504]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2006-11-02 6016]
S3 nv;nv; C:\Windows\system32\DRIVERS\nv4_mini.sys [2006-11-02 1897664]
S3 SISNIC;SiS PCI Fast Ethernet Adapter Driver; C:\Windows\system32\DRIVERS\sisnic.sys [2006-11-02 35328]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2006-11-02 82560]
S4 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\drivers\wmiacpi.sys [2006-11-02 11264]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 aswUpdSv;avast! iAVS4 Control Service; C:\Program Files\Avast4\aswUpdSv.exe [2008-07-19 16056]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\Avast4\ashServ.exe [2008-07-19 147640]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2006-11-02 22016]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2006-11-02 22016]
S3 wbengine;@%systemroot%\system32\wbengine.exe,-104; C:\Windows\system32\wbengine.exe [2006-11-02 562176]
S4 avast! Web Scanner;avast! Web Scanner; C:\Program Files\Avast4\ashWebSv.exe [2008-07-23 348344]
S4 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2006-11-02 22016]
S4 WUSB54GSv2SVC;WUSB54GSv2SVC; C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\WLService.exe [2005-07-04 53307]

-----------------EOF-----------------
info.txt logfile of random's system information tool 1.05 2009-01-18 00:45:53

======Uninstall list======

-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\ 01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7B9AE66C-2A8F-4FB2-85D7-416AFFAE8408}\setup.exe" -l0x9
Acrobat.com-->C:\Program Files\Common Files\Adobe AIR\Versions\1.0\Adobe AIR Application Installer.exe -uninstall com.adobe.mauby 4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
Acrobat.com-->MsiExec.exe /I{77DCDCE3-2DED-62F3-8154-05E745472D07}
Adobe AIR-->C:\Program Files\Common Files\Adobe AIR\Versions\1.0\Adobe AIR Updater.exe -arp:uninstall
Adobe AIR-->MsiExec.exe /I{00203668-8170-44A0-BE44-B632FA4D780F}
Adobe Flash Player 10 ActiveX-->C:\Windows\system32\Macromed\Flash\uninstall_acti veX.exe
Adobe Flash Player 10 Plugin-->C:\Windows\system32\Macromed\Flash\uninstall_plug in.exe
Adobe Reader 9-->MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A90000000001}
avast! Antivirus-->C:\Program Files\Avast4\aswRunDll.exe "C:\Program Files\Avast4\Setup\setiface.dll",RunSetup
BitComet 1.06-->C:\Program Files\BitComet\uninst.exe
CCleaner (remove only)-->"C:\Program Files\CCleaner\uninst.exe"
Choice Guard-->MsiExec.exe /I{8FFC5648-FAF8-43A3-BC8F-42BA1E275C4E}
C-Media WDM Audio Driver-->C:\Windows\system32\cmirmdrv.exe
Creative Audio Console-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\ 01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7B9AE66C-2A8F-4FB2-85D7-416AFFAE8408}\setup.exe" -l0x9 /remove
EVEREST Home Edition v2.20-->"C:\Program Files\EVEREST Home Edition\unins000.exe"
Express Burn-->C:\Program Files\NCH Swift Sound\ExpressBurn\uninst.exe
Express Rip-->C:\Program Files\NCH Swift Sound\ExpressRip\uninst.exe
HijackThis 2.0.2-->"C:\Users\Pete\Desktop\HijackThis.exe" /uninstall
Java(TM) 6 Update 7-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160070}
Linksys Wireless-G USB Network Adapter-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ct or.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C7EEF2B9-8C16-4A04-B98D-B1A952A47E55}\setup.exe" -l0x9
LogonStudio Vista-->C:\PROGRA~1\Stardock\OBJECT~1\LOGONS~1\UNWISE.E XE C:\PROGRA~1\Stardock\OBJECT~1\LOGONS~1\INSTALL.LOG
Macromedia Flash Player 8-->RunDll32 advpack.dll,LaunchINFSection C:\Windows\INF\swflash.inf,DefaultUninstall,5
Magic ISO Maker v5.4 (build 0239)-->C:\PROGRA~1\MagicISO\UNWISE.EXE C:\PROGRA~1\MagicISO\INSTALL.LOG
Malwarebytes' Anti-Malware-->"C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
Messenger Plus! Live-->"C:\Program Files\Messenger Plus! Live\Uninstall.exe"
Motherboard Monitor 5-->"C:\Program Files\Motherboard Monitor 5\unins000.exe"
Mozilla Firefox (3.0.5)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
MSVCRT-->MsiExec.exe /I{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
NS Virtual DJ 6.0 Full-->"C:\Program Files\VirtualDJ\unins000.exe"
OpenOffice.org 3.0-->MsiExec.exe /I{F44DA61E-720D-4E79-871F-F6E628B33242}
PeerGuardian 2.0-->"C:\Program Files\PeerGuardian2\unins000.exe"
RocketDock 1.3.5-->"C:\Program Files\RocketDock\unins000.exe"
Sothink Movie DVD Maker-->"C:\Program Files\DVD Maker\unins000.exe"
TagScanner 5.0 build 525-->"C:\Program Files\TagScanner\unins000.exe"
Trust WB-1400T Webcam-->C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\9\INTEL3~1\I Driver.exe /M{30837A37-8F9F-4817-8B52-C501B67DC3BE} /l1033
Video Edit Magic 4.4-->"C:\Program Files\Video Edit Magic 4.4\Video Edit Magic 4.4\unins000.exe"
Vista Codec Package-->MsiExec.exe /I{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}
VistaGlazz 1.1-->"C:\Program Files\CodeGazer\VistaGlazz\unins000.exe"
VLC media player 0.9.4-->C:\Program Files\VCLplayer\VLC\uninstall.exe
Winamp-->"C:\Program Files\Winamp\UninstWA.exe"
WindowFX-->C:\PROGRA~1\WindowFX\UNWISE.EXE C:\PROGRA~1\WindowFX\INSTALL.LOG
Windows Live Call-->MsiExec.exe /I{020D8396-D6D9-4B53-A9A1-83C47E2E27AA}
Windows Live Communications Platform-->MsiExec.exe /I{F69E83CF-B440-43F8-89E6-6EA80712109B}
Windows Live Essentials-->C:\Program Files\Windows Live\Installer\wlarp.exe
Windows Live Essentials-->MsiExec.exe /I{D9D754A1-EAC5-406C-A28B-C49B1E846711}
Windows Live Messenger-->MsiExec.exe /X{0AAA9C97-74D4-47CE-B089-0B147EF3553C}
Windows Live Sign-in Assistant-->MsiExec.exe /I{505DF7A3-88D5-4DD6-9AD5-C98C2ED0CEC4}
Windows Live Upload Tool-->MsiExec.exe /I{205C6BDD-7B73-42DE-8505-9A093F35A238}
WinRAR archiver-->C:\Program Files\WinRAR\uninstall.exe
Xbox controller 1.07-->C:\Program Files\X box controller\uninst.exe

======Security center information======

AV: avast! antivirus 4.8.1229 [VPS 090117-0]
AS: Windows Defender
AS: avast! antivirus 4.8.1229 [VPS 090117-0]

System event log

Computer Name: Pete-PC
Event Code: 7036
Message: The Windows Image Acquisition (WIA) service entered the stopped state.
Record Number: 4058
Source Name: Service Control Manager
Time Written: 20090117210151.000000-000
Event Type: Information
User:

Computer Name: Pete-PC
Event Code: 4226
Message: TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.
Record Number: 4059
Source Name: Tcpip
Time Written: 20090117230324.222440-000
Event Type: Warning
User:

Computer Name: Pete-PC
Event Code: 10029
Message: DCOM started the service stisvc with arguments "" in order to run the server:
{A1F4E726-8CF1-11D1-BF92-0060081ED811}
Record Number: 4060
Source Name: Microsoft-Windows-DistributedCOM
Time Written: 20090118003132.000000-000
Event Type: Information
User:

Computer Name: Pete-PC
Event Code: 7036
Message: The Windows Image Acquisition (WIA) service entered the running state.
Record Number: 4061
Source Name: Service Control Manager
Time Written: 20090118003136.000000-000
Event Type: Information
User:

Computer Name: Pete-PC
Event Code: 7036
Message: The Windows Image Acquisition (WIA) service entered the stopped state.
Record Number: 4062
Source Name: Service Control Manager
Time Written: 20090118003512.000000-000
Event Type: Information
User:

Application event log

Computer Name: Pete-PC
Event Code: 1
Message: Certificate Services Client has been started successfully.
Record Number: 870
Source Name: Microsoft-Windows-CertificateServicesClient
Time Written: 20090117121402.151441-000
Event Type: Information
User: Pete-PC\Pete

Computer Name: Pete-PC
Event Code: 3036
Message: The content source <csc://{s-1-5-21-1313754427-3454831117-1373015682-1000}/> cannot be accessed.

Context: Windows Application, SystemIndex Catalog

Details:
The object was not found. (0x80041201)

Record Number: 871
Source Name: Microsoft-Windows-Search
Time Written: 20090117121927.000000-000
Event Type: Warning
User:

Computer Name: Pete-PC
Event Code: 3036
Message: The content source <csc://{s-1-5-21-1313754427-3454831117-1373015682-1000}/> cannot be accessed.

Context: Windows Application, SystemIndex Catalog

Details:
The object was not found. (0x80041201)

Record Number: 872
Source Name: Microsoft-Windows-Search
Time Written: 20090117121933.000000-000
Event Type: Warning
User:

Computer Name: Pete-PC
Event Code: 1001
Message: Performance counters for the WmiApRpl (WmiApRpl) service were removed successfully. The Record Data contains the new values of the system Last Counter and Last Help registry entries.
Record Number: 873
Source Name: Microsoft-Windows-LoadPerf
Time Written: 20090117123645.000000-000
Event Type: Information
User:

Computer Name: Pete-PC
Event Code: 1000
Message: Performance counters for the WmiApRpl (WmiApRpl) service were loaded successfully. The Record Data in the data section contains the new index values assigned to this service.
Record Number: 874
Source Name: Microsoft-Windows-LoadPerf
Time Written: 20090117123645.000000-000
Event Type: Information
User:

Security event log

Computer Name: Pete-PC
Event Code: 5032
Message: Windows Firewall was unable to notify the user that it blocked an application from accepting incoming connections on the network.

Error Code: 2
Record Number: 1684
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20090117174713.073408-000
Event Type: Audit Failure
User:

Computer Name: Pete-PC
Event Code: 5032
Message: Windows Firewall was unable to notify the user that it blocked an application from accepting incoming connections on the network.

Error Code: 2
Record Number: 1685
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20090117190330.923801-000
Event Type: Audit Failure
User:

Computer Name: Pete-PC
Event Code: 5032
Message: Windows Firewall was unable to notify the user that it blocked an application from accepting incoming connections on the network.

Error Code: 2
Record Number: 1686
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20090117190334.127019-000
Event Type: Audit Failure
User:

Computer Name: Pete-PC
Event Code: 5032
Message: Windows Firewall was unable to notify the user that it blocked an application from accepting incoming connections on the network.

Error Code: 2
Record Number: 1687
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20090117190334.127019-000
Event Type: Audit Failure
User:

Computer Name: Pete-PC
Event Code: 5032
Message: Windows Firewall was unable to notify the user that it blocked an application from accepting incoming connections on the network.

Error Code: 2
Record Number: 1688
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20090117190334.127019-000
Event Type: Audit Failure
User:

======Environment variables======

"ComSpec"=%SystemRoot%\system32\cmd.exe
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemR oot%\System32\Wbem
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;. WSF;.WSH;.MSC
"PROCESSOR_ARCHITECTURE"=x86
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"USERNAME"=SYSTEM
"windir"=%SystemRoot%
"PROCESSOR_LEVEL"=6
"PROCESSOR_IDENTIFIER"=x86 Family 6 Model 10 Stepping 0, AuthenticAMD
"PROCESSOR_REVISION"=0a00
"NUMBER_OF_PROCESSORS"=1

-----------------EOF-----------------
__________________
www.myPCbuild.piczo.com
My Build logs & step by step mods

  #9  
Old 17th Jan 2009, 18:42
Moderator Group
 
Default Ccleaner showing,uninst.exe on startup

Scan Suspicious File(s)

Please go to VirusTotal.com
(If more than one file needs scanned they must be done separately and logs posted for each one)

1. Copy the file path in the below Code box:
Code:
C:\Windows\system32\Remove.exe
2. At the upload site, click once inside the window next to Browse.
3. Press Ctrl+V on the keyboard (both at the same time) to paste the file path into the window.
4. Next click Send File
Your file will possibly be entered into a queue which normally takes less than a minute to clear.
This will perform a scan across multiple different virus scanning engines.
Important: Wait for all of the scanning engines to complete.
5. Copy and then Paste the link to the results in the next reply.

----------

Your Java is out of date.

Older versions have vulnerabilities that malicious sites can use to infect your system.

First install the new Sun Java Runtime Environment

Be sure to close all browser windows before beginning the install.

Remove the old version(s)

Download JavaRa
  • Unzip the file and open the JavaRa.exe
  • Click Remove Older Versions
  • JavaRa will search for and remove any outdated version of Java and remove any that are found.
  • Click Additional Tasks
  • Place a check next to Remove Useless JRE Files and click Go
  • Exit JavaRa
  • Delete the JavaRa files from the Desktop
__________________

  #10  
Old 17th Jan 2009, 19:53
Donor Group
 
Default Ccleaner showing,uninst.exe on startup

http://www.virustotal.com/analisis/4...979b263173ddd8

java is not up to date
__________________
www.myPCbuild.piczo.com
My Build logs & step by step mods

Reply

Register

Bookmarks

Similar Threads
Thread Thread Starter Forum Replies Last Post
Startup Application Help - Insert an .exe file so that it will startup with windows Sasstraliss Windows Operating Systems 1 4th May 2009 09:52
CCleaner 2.15.815 evilfantasy General Software Chat 0 22nd Dec 2008 16:59
CCleaner v2.14 evilfantasy General Software Chat 1 1st Dec 2008 09:57
Speedstream modem showing not connected, computer showing is ScottAU Networking, Modems & VoIP 1 9th Sep 2008 15:56
CCleaner 2.08.588 evilfantasy General Software Chat 6 26th Jun 2008 09:28
Thread Tools




Arabic Bulgarian Chinese (Simplified) Chinese (Traditional) Croatian Czech Danish Dutch English Finnish French German Greek Hebrew Hungarian Italian Japanese Korean Latvian Lithuanian Norwegian Polish Portuguese Romanian Russian Serbian Slovak Spanish Swedish Thai Turkish Ukrainian

Copyright ©2006 - 2009 Computer Juice.

Powered by vBulletin® Copyright ©2000 - 2009 Jelsoft Enterprises Ltd. SEO by vBSEO ©2009, Crawlability, Inc.